Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan-Lucian Stefancu Empty Tags Remover allows Reflected XSS. This issue affects Empty Tags Remover: from n/a through 1.0.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-11608 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan-Lucian Stefancu Empty Tags Remover allows Reflected XSS. This issue affects Empty Tags Remover: from n/a through 1.0. |
Fixes
Solution
Update the WordPress Empty Tags Remover wordpress plugin to the latest available version (at least 1.1.0).
Workaround
No workaround given by the vendor.
References
History
Thu, 17 Apr 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dan-Lucian Stefancu Empty Tags Remover allows Reflected XSS. This issue affects Empty Tags Remover: from n/a through 1.0. | |
| Title | WordPress Empty Tags Remover Plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability | |
| Weaknesses | CWE-79 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-04-17T18:17:43.113Z
Reserved: 2025-01-23T14:51:34.072Z
Link: CVE-2025-24640
No data.
Status : Awaiting Analysis
Published: 2025-04-17T16:15:33.343
Modified: 2025-04-17T20:21:48.243
Link: CVE-2025-24640
No data.
OpenCVE Enrichment
Updated: 2025-07-12T22:44:30Z
Weaknesses
EUVD